Access violation vulnerability in Injection Guard 1.2.1

The Injection Guard plugin for WordPress is vulnerable to changes made without permission. This vulnerability affects versions up to 1.2.1 of the plugin. If someone with a subscriber-level account or higher is able to access the plugin’s “ig_update” function, they can change the plugin’s whitelist.

Detected in:

Injection Guard fixed vulnerable versions: >= * <= 1.2.1

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.